Mobile

12/13/2017
01:30 PM
50%
50%

Google Play Offered Fewer Blacklisted Mobile Apps in Q3

Third-party AndroidAPKDescargar store carried the most blacklisted mobile apps.

Blacklisted mobile apps are on the rise in app stores: a new report shows a 35% increase in the third quarter across 14 different online stores.

According to new data from RiskIQ, blacklisted mobile apps totaled 51,188 in the third quarter.

Mobile apps are submitted to and analyzed by anti-virus vendors when suspected of malicious behavior, says Mike Wyatt, RiskIQ's product operations director. If such activity is detected, anti-virus vendors will block, or blacklist, the apps from downloading and running on a user's device. Every blacklisted app that slips past an app store's vetting process could potentially cause malicious harm to a user's device or data.  

AndroidAPKDescargar, which offers Spanish-language mobile apps, fueled the third quarter jump with 20,907 blacklisted mobile apps – more than double its 9,285 in the prior quarter, the report notes.

Google Play, meanwhile, had fewer blacklisted mobile apps: 8,125 in Q3, down from 8,657 in the previous quarter, according to the report.

But more importantly, notes Wyatt, Google cut the percentage of blacklisted apps in Google Play to 4% of its total 204,981 apps in the third quarter – down from 8% in the previous quarter. "The percentage is a more important figure ... since it indicates how likely the risk is," Wyatt says.

Google Play and Apple's App Store are considered the go-to place for apps by security experts, because both companies vet the apps in their stores. Nonetheless, malware-laden apps have been found in both stores. Android/TrojanDropper.Agent.BKY, for example, was discovered in Google Play.

Although the percentage and total number of blacklisted apps declined in the third quarter, Wyatt notes it is too early to say whether Google Play has improved its security.

"The Google team works hard to ensure bad apps stay out of their store, so they were able to decrease the number in the third quarter. However, we do not see a consistent downward trend, so it remains to be seen if this number will drop again in the fourth quarter," he says.

AndroidAPKDescargar, meanwhile, did not do so well. Nearly a third of its 68,421 apps in the third quarter were blacklisted apps, a similar slice as its second quarter, the report notes. Mobile game app store 9Game.com had the highest penetration of blacklisted apps on its site in the third quarter, 97% of 5,859 apps.

Wyatt advises CISOs and security teams to educate their BYOD workers to use the official app stores and implement tighter security controls for the devices to reduce introducing a security risk.

BYOD and corporate mobile device users should also be advised to be wary of granting apps extensive permissions and also be leery of downloading apps from pages where there are misspellings on the page, says Wyatt.

Related Content:

 

Dawn Kawamoto is an Associate Editor for Dark Reading, where she covers cybersecurity news and trends. She is an award-winning journalist who has written and edited technology, management, leadership, career, finance, and innovation stories for such publications as CNET's ... View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
6 Security Trends for 2018/2019
Curtis Franklin Jr., Senior Editor at Dark Reading,  10/15/2018
6 Reasons Why Employees Violate Security Policies
Ericka Chickowski, Contributing Writer, Dark Reading,  10/16/2018
Getting Up to Speed with "Always-On SSL"
Tim Callan, Senior Fellow, Comodo CA,  10/18/2018
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Latest Comment: Too funny!
Current Issue
Flash Poll
The Risk Management Struggle
The Risk Management Struggle
The majority of organizations are struggling to implement a risk-based approach to security even though risk reduction has become the primary metric for measuring the effectiveness of enterprise security strategies. Read the report and get more details today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2018-10839
PUBLISHED: 2018-10-16
Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer overflow, which could lead to buffer overflow issue. It could occur when receiving packets over the network. A user inside guest could use this flaw to crash the Qemu process resulting in DoS.
CVE-2018-13399
PUBLISHED: 2018-10-16
The Microsoft Windows Installer for Atlassian Fisheye and Crucible before version 4.6.1 allows local attackers to escalate privileges because of weak permissions on the installation directory.
CVE-2018-18381
PUBLISHED: 2018-10-16
Z-BlogPHP 1.5.2.1935 (Zero) has a stored XSS Vulnerability in zb_system/function/c_system_admin.php via the Content-Type header during the uploading of image attachments.
CVE-2018-18382
PUBLISHED: 2018-10-16
Advanced HRM 1.6 allows Remote Code Execution via PHP code in a .php file to the user/update-user-avatar URI, which can be accessed through an "Update Profile" "Change Picture" (aka user/edit-profile) action.
CVE-2018-18374
PUBLISHED: 2018-10-16
XSS exists in the MetInfo 6.1.2 admin/index.php page via the anyid parameter.